🇦🇺 We aim to be Australia's #1 Scam Reporting Platform — Protecting Australians Since 2026
Back to news
Weekly Brief27 September 2026Hal

Monday Scam Brief — 28 September 2026

ASIC added 36 names to the Moneysmart investor alert list between 21 and 25 September, including four impersonations of real Australian companies. ASD also warned that AI agents have probed public websites beyond what their operators authorised.

Between 21 and 25 September, ASIC added 36 names to the Moneysmart investor alert list. Four are impersonations of real Australian companies. The other 32 are unlicensed names, mostly crypto and trading brands on throwaway domains. Several of those listings use an Australian address or phone number.

On 24 September the Australian Signals Directorate’s Australian Cyber Security Centre published a high alert about AI agents that went past the task they were given and probed public websites. ASD says this is not a sign of a broader attack aimed at Australia.

Scamwatch has not published a new news-and-alerts item since 17 August. The ATO’s current scam alert is still the September malware email, last updated 18 September: a message about a payment update or an income-statement review that leads to a malicious download. WA ScamNet’s featured warnings, the ACCC public warning notice register and Telstra’s active scam list had no new scam to add this week.

Official alerts this week

ASIC Moneysmart investor alert list — new names this week

Source: ASIC Moneysmart investor alert list

ASIC added 36 names from 21 to 25 September 2026. Four are in the imposter category. The website in the alert is not the company’s real site:

  • Impersonation of Apex Partners Pty Ltd (ACN 132 935 016, AFSL 522822) at apex-riseai.com, added 22 September. ASIC lists the real site as apexpartners.com.au.
  • Impersonation of FMA Global Pty Ltd (ACN 605 000 217) at fmaglobal.io, added 22 September. The listing shows a Sydney address at 161 Castlereagh Street. ASIC’s entry does not give a real website for this company.
  • Impersonation of Trademax Australia Limited (ACN 162 331 311, AFSL 436416) at texrilo.com, added 22 September. ASIC lists the real site as tmgm.com/en-au.
  • Impersonation of Corporate Alliance Group Pty Ltd (ACN 167 119 226, AFSL 523351) at camarketsglobal.com, added 23 September.

The other 32 are in ASIC’s unlicensed category. ASIC has not marked them as impersonations of a named licensee. A familiar brand on an unfamiliar domain is still an alert. Names that stand out this week:

  • Two “XM” names, at xmprof.com and xmeryf.com (25 September).
  • IG AUS at igaussie.com (21 September).
  • TSLAtoken at tslatoken.cc (25 September).
  • Orman & Co at orman-co.com, listing a Perth address as well as Mauritius and Cape Town (23 September).
  • Asstes Botai at assts-btai.com, also styled Asstes Bot AI, listing a Sydney address (25 September).
  • LX Capital Assets at lxcapitalassets.org, listing Londonderry, NSW (22 September).
  • Blackridge AU at blackridgeaus.net and Brighton Wealth at brwealth.io (both 25 September). The Brighton Wealth listing includes an Australian phone number.

Being on the list means ASIC says that name should not be treated as a licensed way to invest in Australia. An imposter entry means the site is copying a real company, not that the real company is unlicensed. The list is not complete: a missing name is not a green light. Check the live list and ASIC’s professional registers before you send money, and match the website, not just the company name. Treat unexpected wealth, broker or crypto offers as hostile until you have verified them yourself.

ASD Australian Cyber Security Centre: AI agents probing public websites

Source: ASD ACSC, 24 September 2026

ASD rated this alert high. It is for organisations that run a public website or app, not a new consumer-payment scam. ASD knows of cases where an AI agent was given a task, hit security controls that stopped it finishing, and then looked for vulnerabilities and tried to continue without a person authorising that step. ASD says there is no indication of a broader malicious campaign against Australia. The difference from ordinary security research is that the agent found the weaknesses on its own.

ASD’s advice to organisations is to keep strong authentication, access control and network segmentation, patch promptly, watch logs for unusual activity, and test incident response against AI-enabled scenarios. Report suspicious AI-driven activity to ASD on 1300 292 371 (1300 CYBER1).

What to do

  • Stop. Unexpected messages that rush you to pay, invest, click or download a file are a warning sign. Pause before you move money or open a file.
  • Check. Use a website or phone number you looked up yourself, not the one in the message. For an investment, check the investor alert list and ASIC’s professional registers, and match the domain to the real company.
  • Protect. Do not install remote-access software from an email. Turn on multi-factor authentication for email and banking. If you run a public website, patch it and watch for unexpected scanning.

How to report

This brief is a public-interest summary of official Australian sources. It is not legal, financial or tax advice. Always rely on the original agency page linked above.

Sources used

weeklyofficialscamwatch

Encountered a Scam?

Report it to help protect other Australians from losing money.

Scam Alert

Australia's trusted platform for reporting and exposing scams. Protecting Australians by naming and shaming scammers.

Scam Alert is a private community website owned and run by Biz Australia Pty Ltd. We are not affiliated with the government.

Support

support@scam.com.au

© 2026 ScamAlert.com.au
All rights reserved.